Mugifi information
Privacy, without the fog
Your uploaded artwork is private production material, not content for a gallery or a model-training library.
What we collect
Your private photos or artwork, crop and mug placement, order details, delivery address, email and payment/fulfilment identifiers. If you create an account, we store your name, securely hashed password or linked Google identity, and active sessions. Stripe handles card details; Mugifi does not store them.
Why we use it
We use this information to show your private mug proof, take and fulfil your order, understand how the website is used, provide support and meet legal obligations. We do not use your upload to generate new artwork.
Analytics and cookies
Google Analytics is not loaded until you explicitly accept analytics cookies. The consent notice is versioned and cookie settings remain available in the footer. Analytics events never include photo asset keys, filenames, artwork, addresses, delivery details or email addresses.
Saved designs
When you choose “Save design”, we store up to 50 catalogue product IDs and the time you saved each one in this browser’s local storage, for 30 days per design. This requested shortlist works without an account and does not contain your photos, personalised text, proof or contact details. The site checks those IDs against the current public catalogue when you open Saved. Remove individual designs or clear the whole list on that page. It is not synced between devices; clearing browser storage also removes it. Analytics, including saved-design events, still requires your separate analytics consent.
Mixed-design baskets
A necessary secure cookie remembers the private basket you request for seven days. Approved prints and personalisation are stored on our servers, not in browser local storage or analytics. Unordered basket files expire after seven days; paid order proofs are kept separately for production and support. Signing out hides baskets attached to that account.
Optional email updates
Creating an account or placing an order does not subscribe you to marketing. When available, launch updates and checkout reminders have separate, unticked choices and require email confirmation. Launch permission expires after 12 months and covers one guided-template launch email. Reminder permission lasts 30 days and applies only to checkouts started after you confirm on the same browser, remembered by a necessary secure cookie. We send at most one reminder per day, only while an unpaid checkout remains open.
Use the unsubscribe link in any optional email to stop both types, or contact hello@mugifi.com. Order and account service messages are unaffected. Bounces and complaints suppress future optional emails. Unconfirmed requests expire after 24 hours; inactive permission records and their delivery content are removed within 30 days after expiry or withdrawal. We retain a keyed, one-way address hash on a do-not-email list to respect withdrawals; contact support if you later wish to change that choice. Email addresses, consent tokens and private checkout links are never sent to analytics.
Who receives it
Vercel and our database/storage providers host the service; Stripe processes payment; Prodigi prints and dispatches physical orders; Resend delivers service email. Google provides website analytics only after analytics consent, and separately participates when you choose Google sign-in.
Retention
Abandoned artwork is retained for 14 days. Ordered artwork and print assets are retained for 180 days to support delivery and replacement. Transaction records may be retained longer where accounting law requires it.
Your choices
You can change cookie consent at any time from the footer. You can ask for access, correction or deletion at hello@mugifi.com. Some transaction data must remain where the law requires it.